Rowan's Avatar

Rowan

@novafacing.bsky.social

fuzzing enjoyer @novafacing@haunted.computer

339 Followers  |  360 Following  |  325 Posts  |  Joined: 14.12.2023  |  2.1586

Latest posts by novafacing.bsky.social on Bluesky

Oh I wasn't being sarcastic when I said it was king shit I'm all for this

02.11.2025 16:13 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

I don't have a horse in the baseball fight but listening to the game on the free radio broadcast rules

02.11.2025 04:26 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Truly the "I told you so" of all time

02.11.2025 04:25 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Post image

Gotta say this is king shit from the libxml2 folks who know perfectly well it's used in all kinds of external facing mission critical places

02.11.2025 04:24 β€” πŸ‘ 3    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

It's fun! But probably only good if you hate nuance or dislike Frankenstein by Mary Shelley

31.10.2025 05:35 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Spent the entire new Frankenstein movie scared the monster was going to come out of the screen and start beating me over the head with the moral of the story

31.10.2025 05:24 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Fair point I think that specific CVE is relatively hard until you add autodict which is actually a great example for my use case

30.10.2025 18:01 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Yeah agreed I just mostly want a good set of known bugs in the sample set so there's a sense of accomplishment instead of just "cool more coverage this way! You'll probably never find a bug though"

30.10.2025 17:05 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Fuzzer shallow e.g. CVE-2023-50268

30.10.2025 17:04 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Luckily there are some really really shallow bugs out there, it's just taking a couple hours to find em

30.10.2025 14:41 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

I know unifuzz and fuzz bench exist but they don't quite serve my purpose, I need more bugs because the benchmark is for a fuzzer that starts off quite bad with no feedback and I need serotonin for users

30.10.2025 14:40 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Is the best way to make a bug based fuzzing benchmark really just to go through CVEs and find every issue in the tracker and hope there's a POC 😭

30.10.2025 14:35 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 3    πŸ“Œ 0

Talk Tomorrow: "Scalable Static Analysis and High-Performance Logic Programming" (github.com/kmicinski/mi...)

28.10.2025 18:58 β€” πŸ‘ 17    πŸ” 7    πŸ’¬ 1    πŸ“Œ 0

me (recently into bouldering):
CI:
me:
CI: ...
me: nice, come on
CI: ...
me: yeah, come on...
CI: ...
me:
CI: ...
me: COME ON!!
CI: ...
CI: ❌
me: ah! good attempt!!

27.10.2025 20:23 β€” πŸ‘ 60    πŸ” 5    πŸ’¬ 2    πŸ“Œ 0
What the hell are we doing? Β· Addison Crump Homepage for Addison Crump

Must-read for fuzzing folks (read: tooling/algorithms/academia) by Addison Crump
addisoncrump.info/research/wha...

26.10.2025 03:16 β€” πŸ‘ 30    πŸ” 10    πŸ’¬ 1    πŸ“Œ 1

A sandwich is $3000 but if you want meat that's another $1500 and oh if you want lettuce that's another $1500. Mustard? You're not gonna believe this

25.10.2025 19:56 β€” πŸ‘ 3    πŸ” 1    πŸ’¬ 1    πŸ“Œ 0

I don't have a pic but when I was a kid I made a wooper out of the red wax from a big basket of babybel cheeses

25.10.2025 00:41 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Update I did not use beamer so it only took 3 hours!!!

17.10.2025 06:44 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Ooh I don't know if I can get behind this I had a little party when they added File::lock/lock_shared to std

17.10.2025 06:33 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Making my conference slides and formatting code in google slides sucks and the devil on my shoulder is telling me to use beamer but I will NOT

15.10.2025 19:22 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
Microsoft Locks Down IE Mode After Hackers Turned Legacy Feature Into Backdoor Microsoft restricts IE Mode in Edge after threat actors exploited Chakra engine flaws for remote access.

I'm shocked.. thehackernews.com/2025/10/micr...

13.10.2025 22:33 β€” πŸ‘ 5    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0

The emphasis on "clone means perf loss" made me try and avoid it at all costs but that meant I didn't actually evaluate whether that's true until kind of recently because for refs it's not!

13.10.2025 19:59 β€” πŸ‘ 4    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Yeah, you could say I'm a vibe coder (using claude to suggest synonyms of my traits with different first letters so they can all be abbreviated prettily as generic parameters)

11.10.2025 21:03 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Sad I didn't come up for this one I'm becoming a Mariners fan by default (lack of a pdx team besides the pickles who run out of fried pickles at their games constantly)

11.10.2025 05:40 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
SpongeBob with rock about to fall on him. Caption says "not in library code".

SpongeBob with rock about to fall on him. Caption says "not in library code".

11.10.2025 01:04 β€” πŸ‘ 5    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

I have a hot take that Result is extremely overused in places where stuff should probably just panic and often ends up obscuring the problem by bubbling up errors too high. Panicking is okay!

11.10.2025 01:03 β€” πŸ‘ 4    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

TIL about # [expect], I've been bitten a couple times by changing # [allow(unused)] that actually was!

10.10.2025 22:08 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

None of the tables of specs and such in at least the translated version are populated sadly

10.10.2025 16:16 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

I know sushi masters spend 5 years learning to make rice and egg and I'll never be that but let's be real the fish itself is not that different

08.10.2025 04:28 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Never going to be the same now that I can just buy sashimi grade fish as uwajimaya and get 75% of the restaurant sushi experience for 15% of the price

08.10.2025 04:27 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

@novafacing is following 20 prominent accounts